User data exposed due to flaws in UMANG portal: researchers
Security researchers said weaknesses in the UMANG portal exposed user data across multiple government databases, and the Ministry of Electronics and Information Technology said it had started corrective steps.

- UMANG is a unified portal for accessing hundreds of Union and state public services.
- Security researchers said weaknesses in UMANG exposed data across several databases.
- The reported exposure included PF UAN numbers, LPG booking details, and Aadhaar numbers stored in plain text across some services.
- The Ministry of Electronics and Information Technology said it was implementing corrective measures, encrypting plaintext API data, and reviewing logs and activity.
Security researchers reported that flaws in the UMANG portal, a platform that aggregates hundreds of Union and state public services, exposed user data across several databases. The alleged exposure matters because the portal is part of India’s digital public-service delivery ecosystem and involves sensitive personal and financial information.
UPSC may ask how architecture, access controls, encryption, and logging determine the security of integrated public-service platforms such as UMANG, and how such failures affect citizen trust and service delivery.
Related dispatches



